42731 : Microsoft Excel Conditional Formatting Value Unspecified Code Execution
Printer | http://osvdb.org/42731 | Email This | Edit Vulnerability

Views This Week

4

Views All Time

502

Info

Last Modified

9 months ago

Percent Complete

0%

Disclosure

Mar 11, 2008

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

This Entry needs help! It is only 0% Complete. Click the edit link above to add more information.

Contributing is fast and easy, and benefits the entire security community.

Description

(Description Provided by CVE) : Unspecified vulnerability in Microsoft Excel 2000 SP3 and 2002 SP2, and Office 2004 and 2008 for Mac, allows user-assisted remote attackers to execute arbitrary code via crafted conditional formatting values, aka "Excel Conditional Formatting Vulnerability."

Classification

Unknown or Incomplete

Products

Unknown or Incomplete

References

Tools & Filters

Nessus

31413

Credit

Unknown or Incomplete

Blogs

2008/03/14 14:00:11 | Microsoft Security Bulletin MS08-014 - Critical: Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (949029)

from: ActiveWin.com - The Most Activated Windows Resource

Updated 3/13: This security update resolves several privately reported and publicly reported vulnerabilities in Microsoft Office Excel that could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited these vulnerabilities could take complete control of an affected system

2008/03/12 08:46:02 | Microsoft releases rehabilitate of 4 safe announcement 12 flaw

from: IT Tech Blog

Time of Beijing of dispatch of sina science and technology on March 11 message, according to foreign media coverage, ... will makes, the hacker can control its computer system through this flaw. The MS08-014 safety ... place. For example, among the Office 2004 that the flaw of rehabilitate of MS08-014 announcement

Comments

No Comments.

DONATE NOW!

User Status

Quick Searches

Advertisements

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2008 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use